
Nishtha W
Senior Enterprise Security Architect
Habilidades

Revisa mis servicios


Experiencia laboral
Senior Enterprise Security Architect
Basware • Tiempo completo
Jan 2023 - Dec 2023 • 11 mos
• Architected and deployed a unified multi-cloud security framework (AWS & Azure), reducing misconfigurations by 40% and improving audit readiness across global business units. • Led ISO 27001 audit and compliance initiatives, closing 100% of identified gaps ahead of schedule and modernizing enterprise-wide security policies. • Integrated real-time threat intelligence feeds into SIEM and detection pipelines, reducing mean time to detect (MTTD) for critical alerts by ~35%. • Partnered with engineering and product teams to conduct threat modeling and risk assessments, identifying and remediating multiple high-severity vulnerabilities pre-release. • Developed security performance metrics and executive dashboards to drive risk-informed decisions and strategic investments.
Senior Security Engineer
Payconiq International • Tiempo completo
May 2022 - Dec 2022 • 7 mos
• Coordinated third-party penetration tests for new releases and communicated findings to clients. • Developed and reviewed security policies for ISO 27001 readiness; participated in internal audits. • Maintained and optimized CI/CD security scans (SAST) and managed security tooling/licenses. • Successfully implemented the Arctic Wolf SOC platform within deadline. • Managed organization-wide security tickets and responsible disclosure processes. • Embedded secure-by-design principles through threat modeling, code reviews, and collaboration with cross- functional teams. • Conducted internal/external security assessments and promoted secure coding practices.
Senior Advanced CyberSecurity Architect
Honeywell
Nov 2021 - Mar 2022 • 4 mos
As an Information Security and GRC professional with 12+ years of experience, I help organizations mitigate cyber risk, navigate regulatory requirements, and strengthen their overall security posture in today’s evolving threat landscape. I bring hands-on expertise in penetration testing, cloud security, ISO 27001 implementation, and security awareness programs, with a strong focus on aligning cybersecurity strategies to business objectives.